ZeroHour

CVE-2024-44843

PoC
CVSS 3.1
5.9 medium
EPSS
<1%p37
Published
()
Modified
Description

An issue in the web socket handshake process of SteVe v3.7.1 allows attackers to bypass authentication and execute arbitrary coammands via supplying crafted OCPP requests.

Vendors
steve-community
Products
steve
Weakness
CWE-287
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:R/S:U/C:H/I:L/A:L

In the news

No ingested article mentions this CVE yet.